-
公开(公告)号:US10706063B2
公开(公告)日:2020-07-07
申请号:US15905041
申请日:2018-02-26
申请人: QOMPLX, Inc.
发明人: Jason Crabtree , Andrew Sellers
IPC分类号: G06F17/30 , G06F16/25 , G06F16/901 , H04L29/06 , G06N5/02 , G06N3/04 , G06F21/62 , G06N20/00 , G06N5/04
摘要: A system for contextual data collection and extraction is provided, comprising an extraction engine configured to receive context from a user for desired information to extract, connect to a data source providing a richly formatted dataset, retrieve the richly formatted dataset, process the richly formatted dataset and extract information from a plurality of linguistic modalities within the richly formatted, and transform the extracted data into a extracted dataset; and a knowledge base construction service configured to retrieve the extracted dataset, create a knowledge base for storing the extracted dataset, and store the knowledge base in a data store.
-
公开(公告)号:US10609079B2
公开(公告)日:2020-03-31
申请号:US15725274
申请日:2017-10-04
发明人: Jason Crabtree , Andrew Sellers , Daniel Fricano , Rajat Gupta , Ian MacLeod
摘要: A system for mitigation of cyberattacks employing an advanced cyber decision platform which uses a time series data store, a directed computational graph module, an action outcome simulation module, and observation and state estimation module, wherein the state of a network is monitored and used to produce a cyber-physical graph representing network resources, simulated network events are produced and monitored, and the network events and their effects are analyzed to produce security recommendations.
-
公开(公告)号:US10594714B2
公开(公告)日:2020-03-17
申请号:US15825350
申请日:2017-11-29
发明人: Jason Crabtree , Andrew Sellers , Nhan Tran , Sethan Arja , Shadrack Antwi , Ian MacLeod , Penelope Brooks , Angad Salaria
摘要: A cybersecurity system that protects against cyber attacks by performing user and device behavioral analysis using an advanced cyber decision platform which creates a map of users and devices attached to a network, develops a baseline of expected interactions and behaviors for each user and device in the map, and monitors deviations from the expected interactions and behaviors.
-
94.
公开(公告)号:US10402906B2
公开(公告)日:2019-09-03
申请号:US15376657
申请日:2016-12-13
发明人: Jason Crabtree , Andrew Sellers
摘要: A system for investment vehicle quantification employing an advanced decision platform comprises a data retrieval module configured to retrieve investment related data. A predictive analytics module performs predictive analytics on investment data using investment specific and machine learning functions. A predictive simulation module performs predictive simulation functions on the investment data. An indexed global tile module retrieves geospatial and map overlay data, and serves as an interface for geospatial data requests. An interactive display module displays the results of predictive analytics and predictive simulation and both real world and simulated geospatial data.
-
95.
公开(公告)号:US20230370439A1
公开(公告)日:2023-11-16
申请号:US18361835
申请日:2023-07-29
申请人: QOMPLX, Inc.
发明人: Jason Crabtree , Richard Kelley
CPC分类号: H04L63/0428 , H04L63/1433 , H04L9/3236 , H04L63/1425 , H04L63/145 , H04L63/0807 , H04L9/3239 , H04L63/0815
摘要: A system and methods for network action classification and analysis using widely distributed lightweight honeypot sensor nodes, comprising a plurality of network traffic sensors each configured to monitor visible network traffic, analyze monitored traffic to identify patterns, communicate with other network sensors to correlate their respective traffic data, and produce a threat landscape based on the correlated traffic data. The system and method may comprise an emulation engine configured to simulate limited services or functionalities, emulating vulnerabilities or weak points in systems. Emulation engine may comprise one or more modules configured to provide use-case specific emulation capabilities. Emulation engine may receive network traffic data from network sensors, route the network traffic to an appropriate simulated destination service associated with the network traffic, and monitor the interactions between an attacker and the simulated destination. Logged interactions may be used as an input to generate the threat landscape.
-
公开(公告)号:US11799900B2
公开(公告)日:2023-10-24
申请号:US17973520
申请日:2022-10-25
申请人: QOMPLX, Inc.
发明人: Jason Crabtree , Andrew Sellers
IPC分类号: H04L9/40 , G06F16/2458
CPC分类号: H04L63/1441 , G06F16/2474 , H04L63/123 , H04L63/20
摘要: A system and methods for mitigating golden ticket attacks within a domain is provided, comprising an authentication object inspector configured to observe a new authentication object generated by an identity provider, and retrieve the new authentication object; and a hashing engine configured to retrieve the new authentication object from the authentication object inspector, calculate a cryptographic hash for the new authentication object, and store the cryptographic hash for the new authentication object in a data store; wherein subsequent access requests accompanied by authentication objects are validated by comparing hashes for each authentication object to previous generated hashes.
-
97.
公开(公告)号:US20230319019A1
公开(公告)日:2023-10-05
申请号:US18297500
申请日:2023-04-07
申请人: QOMPLX, Inc.
发明人: Jason Crabtree , Richard Kelley
CPC分类号: H04L63/0428 , H04L9/3236 , H04L9/3239 , H04L63/1433 , H04L63/1425 , H04L63/0807 , H04L63/0815 , H04L63/145
摘要: A system for detecting and mitigating forged authentication attacks is provided, comprising an authentication inspector configured to observe a new authentication object generated by an identity provider, and retrieve the new authentication object; and a hashing engine configured to retrieve the new authentication object from the authentication object inspector, calculate a cryptographic hash for the new authentication object, and store the cryptographic hash for the new authentication object in a data store; wherein subsequent access requests accompanied by authentication objects are validated by comparing hashes for each authentication object to previous generated hashes.
-
公开(公告)号:US20230300174A1
公开(公告)日:2023-09-21
申请号:US18299677
申请日:2023-04-12
申请人: QOMPLX, Inc.
发明人: Jason Crabtree , Andrew Sellers
IPC分类号: H04L9/40 , G06F16/2458 , G06F16/951
CPC分类号: H04L63/20 , H04L63/1425 , H04L63/1441 , G06F16/2477 , G06F16/951 , H04L63/1433
摘要: A system and method for self-adjusting cybersecurity analysis and score generation, wherein a reconnaissance engine gathers data about a client's computer network from the client, from devices and systems on the client's network, and from the Internet regarding various aspects of cybersecurity. Each of these aspects is evaluated independently, weighted, and cross-referenced to generate a cybersecurity score by aggregating individual vulnerability and risk factors together to provide a comprehensive characterization of cybersecurity risk using a transparent and traceable methodology. The scoring system itself can be used as a state machine with the cybersecurity score acting as a feedback mechanism, in which a cybersecurity score can be set at a level appropriate for a given organization, and data from clients or groups of clients with more extensive reporting can be used to supplement data for clients or groups of clients with less extensive reporting to enhance cybersecurity analysis and scoring.
-
公开(公告)号:US11750631B2
公开(公告)日:2023-09-05
申请号:US17589811
申请日:2022-01-31
申请人: QOMPLX, Inc.
发明人: Jason Crabtree , Andrew Sellers
IPC分类号: H04L9/40 , H04L43/08 , H04L43/045 , G06F21/57
CPC分类号: H04L63/1425 , H04L43/045 , H04L43/08 , H04L63/1433 , G06F21/577
摘要: A system and method to identify and prevent cybersecurity attacks on modern, highly-interconnected networks, to identify attacks before data loss occurs, using a combination of human level, device level, system level, and organizational level monitoring.
-
公开(公告)号:US20230208882A1
公开(公告)日:2023-06-29
申请号:US18069206
申请日:2022-12-20
申请人: QOMPLX, Inc.
发明人: Jason Crabtree , Richard Kelley
IPC分类号: H04L9/40 , G06F16/951 , G06F16/2458
CPC分类号: H04L63/20 , G06F16/951 , G06F16/2477 , H04L63/1425 , H04L63/1441
摘要: A system for continuous contextual policy-aware vulnerability mapping, security posture determination and attack planning and simulation, comprising an indexing service configured to create a dataset by processing and indexing source code of a project by a developer, perform a code audit on the indexed source code, store results from the code audit in the dataset, gather additional information relating to the provided project as intended and as operated, store the additional information in the dataset, and store the dataset into memory; and a monitoring service configured to continuously monitor the project for source code and operational changes and performance and make changes to the dataset as needed.
-
-
-
-
-
-
-
-
-